PowerSpider (e)
(Backdoor.Win32.PowerSpider.e)

by MiniSnake

Written in Visual C++, compressed with UPX

Made in China

more versions


dropped files:
c:\WINDOWS\system32\iexplore.exe    Size: 56,744 bytes 
c:\WINDOWS\system32\psinthk.dll     Size: 9,728 bytes 

startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "mssysint"
data: iexplore.exe 



tested on Windows XP
February 04, 2006

MegaSecurity